Security Vulnerabilities
- CVEs Published In 2026
Improper authentication in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.
Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information over an adjacent network.
Use after free in Microsoft QUIC allows an unauthorized attacker to execute code over a network.
Heap-based buffer overflow in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over an adjacent network.
Out-of-bounds write in Windows DNS allows an unauthorized attacker to execute code over an adjacent network.
Use after free in Active Directory Certificate Services (AD CS) allows an authorized attacker to execute code over a network.
Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows attacker to gain an unauthorized access to victim's machine
Untrusted pointer dereference in Windows Win32K allows an authorized attacker to disclose information locally.